Threat Level: green Handler on Duty: Pedro Bueno

SANS ISC InfoSec Handlers Diary Blog


Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!

FreeBSD packet filter (pf) DoS using fragments.

Published: 2006-01-25
Last Updated: 2006-01-25 18:44:53 UTC
by Swa Frantzen (Version: 1)
0 comment(s)
FreeBSD announced a patch for a vulnerability that can trigger a kernel panic due to crafted fragments and their handling in pf(4).

Workrounds are available: do not use "scrub fragment crop" or "scrub fragment drop-ovl" in the pf.conf(5)

More information:
--
Swa Frantzen
Keywords:
0 comment(s)
Diary Archives